Senior Security Engineer - Node.js Proactive Defense (remote-only)

1 month, 3 weeks ago
Full-time
Senior
Software Development
CloudLinux

CloudLinux

CloudLinux is a leading provider of the CloudLinux OS, a platform for Linux web hosting that offers next-level performance and security. With a focus on optimizing web hosting environments, CloudLinux helps service providers improve density, stability,...

IT Services
51-250
Founded 2009

Description

  • Own the Node.js Proactive Defense initiative as a new runtime security layer for Imunify360.
  • Design and ship a Node.js runtime agent that hooks into the V8/Node lifecycle to trace and block malicious behavior patterns.
  • Define the detection model, including default-blocking versus signal-only behaviors, and manage rule authoring, distribution, and versioning.
  • Integrate Node.js detections, blocks, and incidents into the existing Imunify telemetry pipeline, backend event store, and admin UI.
  • Ensure the agent is production-safe for shared hosting with low overhead, tenant isolation, and compatibility with CageFS and LVE.
  • Build the pipeline that turns CVE write-ups and threat-intel feeds into shipped detections.
  • Generate, test, and roll out rule candidates from advisories and exploit primitives.
  • Own the feedback loop from production blocks, false positives, and evasions into future rule improvements.
  • Design the solution to operate as a first-class layer of Imunify360 rather than a standalone tool.

Requirements

  • Security engineer mindset focused on attack surfaces, exploit primitives, and defense-in-depth.
  • Ability to read a CVE write-up and reconstruct the exploit primitive.
  • Knowledge of runtime exploitation patterns such as prototype pollution, deserialization, command injection, SSRF, path traversal, and supply-chain poisoning.
  • Systems-level development experience with Linux daemons, systemd, privileged processes, IPC, namespaces/cgroups, file-descriptor hygiene, and signal hygiene.
  • Low-level instrumentation experience with technologies such as LD_PRELOAD, eBPF, ptrace, JVM agents, Python sys.settrace, language-runtime preload, or kernel modules.
  • Understanding of why common exploit primitives exist, not just familiarity with their names.
  • Shared-hosting or multi-tenant Linux experience, including LVE, CageFS, control panels, or similar tenant-isolation work (nice to have).
  • Comfort using CVEs and threat-intel feeds as primary product input (nice to have).

Benefits

  • Fully remote work with flexible working hours worldwide.
  • Paid 24 days of vacation per year plus 10 national holidays.
  • Unlimited sick leave.
  • Private medical insurance coverage.
  • Co-working and gym/sports reimbursement.
  • Budget for education and professional development.
  • Opportunity to earn a reward for the most innovative patentable idea.
  • Interesting and challenging projects.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Principal Identity Engineer

Hasbro 5K-10K Consumer Goods

Wizards of the Coast is hiring a Principal Identity Engineer to own the technical direction of its enterprise identity architecture, supporting Zero Trust, privileged access, and identity governance across cloud and on-premises environments.

Active Directory CI/CD Git OpenID Connect PowerShell Pulumi Python REST API SAML Terraform
13 hours, 49 minutes ago

Senior Device Engineer

Dragos 251-1K Professional Services

Dragos is hiring a Senior Device Engineer to build automation software that identifies, fingerprints, and interacts with network-connected devices across critical infrastructure environments.

Cybersecurity Docker Embedded Systems Go HTTP JavaScript Node.js TCP/IP TLS TypeScript
13 hours, 49 minutes ago

Elastic Engineer

Jolera 251-1K Internet Software & Services

Jolera is seeking an Elastic Engineer to design and operate scalable Elasticsearch-based environments for cybersecurity analytics, threat hunting, and detection workflows.

Cybersecurity Elasticsearch Encryption Java Kibana Linux Logstash Machine Learning Python Ruby
14 hours, 19 minutes ago

Staff Software Development Engineer - Windows Endpoint

BeyondTrust 1K-5K Professional Services

BeyondTrust is hiring a Staff Software Development Engineer to own Windows kernel-mode enforcement for its Identity Security Platform, building real-time security controls that decide whether actions on Windows endpoints are permitted or denied.

Agile C C++ Rust
14 hours, 19 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers